Cyber Resilience Act approved – Call to Action
On 10 October 2024, a new legislation, aimed at manufacturers, distributors and importers of hardware and software, was adopted by the Council of the European Union, aiming to ensure that digital products in Europe become more secure. This is impacting both the supply chain throughout the digital product's lifecycle.
No time to waste
The Cyber Resilience Act establishes stringent cybersecurity standards for products with digital elements, forcing first of all manufacturers to pay more attention to cyber threats during the development of their products, and extend their care during the entire product lifecycle. The CRA will come into effect in 2025 and will force companies to consider cybersecurity a core part of their product development, rather than a side issue. A 24-month transition period will be in place so that products and processes can be adapted to the new requirements.
Impact for businesses
- Mandatory cybersecurity requirements for digital products, such as software and IoT devices, from the design phase onwards.
- Making manufacturers, importers and distributors responsible for ensuring that products are and remain secure.
- Mandatory security updates and reporting of security vulnerabilities.
- Fines of up to 2.5% of global turnover for companies that fail to comply.
Call to Action
For businesses developing and/or manufacturing connected digital products the above implies:
- Implementing processes that safeguards the entire supply chain, ensuring IoT devices are designed, manufactured, and maintained with cybersecurity in mind throughout their lifecycle.
- Adding Security as an implicit activity in all phases of their Software Development Life Cycle (SSDLC).
At Logic Technology, we help companies to achieve full compliance with the Cyber Resilience Act for embedded devices, whether they are already finished and in production, or yet to be defined. Our solutions are aligned with the CRA and guarantee that your devices meet the highest security standards.
Gevorg Melikdjanjan
Security | Reliability | Data Solutions
Be aligned with the CRA
It doesn't have to be extremely complex preparing your products for CRA assessment and compliance. Setup a meeting and let me explain how we resolve this.
Schedule a meeting